YubiKey Side-Channel Attack

By | 9:12 AM Leave a Comment

There is a side-channel attack against YubiKey access tokens that allows someone to clone a device. It’s a complicated attack, requiring the victim’s username and password, and physical access to their YubiKey—as well as some technical expertise and equipment.

Still, nice piece of security analysis.


from Schneier on Security https://ift.tt/q9W0tkN

0 comments:

Post a Comment